Install and Administer Active Directory Flashcards
What does the term “Same Sign-On” mean with respect to the Windows Azure Active Directory Sync Tool?
Users that have their passwords synchronized to Windows Azure AD will be able to use the same username and password to log into their Azure AD services as well as their on-premises resources.
Why does Microsoft recommend that you create a new Group Policy Object (GPO) for AppLocker in environments where both Software Restriction Policies and AppLocker are in place?
If you upgrade a computer that uses Software Restriction Policies to Windows Server 2012 R2 or Windows 8.1, and then implement AppLocker rules, only the AppLocker rules will be enforced.
Which PowerShell cmdlet modifies properties of OU?
Set-ADOrganizationalUnit
Which type of Windows servers responds to forest-wide Lightweight Directory Access Protocol (LDAP) queries over port 3268?
the global catalog server
What comprises the membership list of a local group?
- Users and computers from any trusted domain
- Global groups from any trusted domain
- Universal groups from any trusted domain
What must an Enterprise Administrator do in Active Directory Users and Computers before moving a newly created child OU to a different parent OU?
On the properties of the child OU, under the Object tab, clear the Protect object from accidental deletion checkbox.
Which user right gives a user permissions to change the time and date on the internal clock of the computer?
the Change the system time local policy
What comprises the membership list of a global group?
- Users and computers from the same domain as the global group
- Global groups from the same domain
Which PowerShell cmdlet deletes user accounts?
Remove-ADUser
When creating a template user account, why should you set the Account is Disabled property on the account?
So no one can use it to log in.
Which edition of a Windows Server 2012 based operating system should be the source of the media that you use to create additional domain controllers running Windows Server 2012 R2 Datacenter edition with the install from media (IFM) method?
Windows Server 2012 R2 Datacenter edition
How would you grant a group of users the authority to reset user’s passwords for the OUs located in the domain?
On the OU, use the Delegation of Control Wizard to delegate the Reset user passwords and force password change at next logon task to the group.
Which command can be used to join a computer to a domain without contacting a domain controller?
djoin.exe
Which operations master role is responsible for assigning Security Identifiers (SIDs) to objects such as users and groups?
RID Master
Which operations master role is responsible for updating references from local objects to objects in other domains?
infrastructure master